[Secure-testing-commits] r7572 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Mon Dec 10 15:52:18 UTC 2007


Author: white
Date: 2007-12-10 15:52:17 +0000 (Mon, 10 Dec 2007)
New Revision: 7572

Modified:
   data/CVE/list
Log:
slide-webdavclient not-affected, debian only ships the client, not the server part

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-12-10 02:04:31 UTC (rev 7571)
+++ data/CVE/list	2007-12-10 15:52:17 UTC (rev 7572)
@@ -1439,7 +1439,7 @@
 CVE-2007-5732 (Directory traversal vulnerability in downloadfile.php in eLouai's ...)
 	NOT-FOR-US: eLouai's Force Download
 CVE-2007-5731 (Absolute path traversal vulnerability in Apache Jakarta Slide 2.1 and ...)
-	- slide-webdavclient <unfixed> (low; bug #448841)
+	- slide-webdavclient <not-affected> (Vulnerable code is only in the server part, but debian only has the client part)
 CVE-2007-5730 (Heap-based buffer overflow in QEMU 0.8.2, as used in Xen and possibly ...)
 	{DSA-1284-1}
 	- qemu 0.9.0-2 (bug #424070)




More information about the Secure-testing-commits mailing list